Data Protection in Zambia

Security in Zambia

A data controller or data processor is required to provide guarantees regarding the technical and organisational security measures employed to protect the personal data associated with the processing undertaken and ensure strict adherence to such measures. 

A data controller or the data processor is further required to, having regard to the nature, scope and purpose of processing personal data undertaken, the risks associated with such processing, and the likelihood and severity of the harm that may result from such processing, implement appropriate security safeguards including:

  • maintaining integrity of personal data using methods including pseudonymisation and encryption;
  • ensuring ongoing confidentiality, integrity and implementation of measures necessary to protect the integrity of personal data;
  • measures necessary to prevent misuse, unauthorised access to, modification, disclosure or destruction of personal data; and
  • implementation of appropriate data protection policies. 

A data controller and data processor is also required to undertake a periodic review of security safeguard in accordance with guidelines issued by the Data Protection Commissioner.

Continue reading

  • no results

Previous topic
Back to top